PT-2022-27676 · Unknown · Mschaef Toto

Published

2022-12-17

·

Updated

2022-12-22

·

CVE-2022-4590

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions mschaef toto versions up to 1.4.20
Description A vulnerability was found in the Todo List Handler component, which can be exploited remotely. The manipulation leads to cross-site scripting. It is recommended to upgrade the affected component to address this issue.
Recommendations For mschaef toto versions up to 1.4.20, upgrade to version 1.4.21 to address this issue. As a temporary workaround, consider restricting access to the Todo List Handler component until the upgrade is applied.

Fix

Improper Neutralization

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-4590

Affected Products

Mschaef Toto